No more typing reviews! Try our Samantha, our new voice AI agent.

Prisma Cloud by Palo Alto Networks vs Trellix Cloud Workload Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
124
Ranking in other categories
Vulnerability Management (4th), Cloud and Data Center Security (5th), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (1st), AI Observability (3rd)
Prisma Cloud by Palo Alto N...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
114
Ranking in other categories
Web Application Firewall (WAF) (9th), Container Security (2nd), Cloud Security Posture Management (CSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (2nd), Data Security Posture Management (DSPM) (2nd)
Trellix Cloud Workload Secu...
Average Rating
9.0
Reviews Sentiment
7.0
Number of Reviews
4
Ranking in other categories
Cloud Workload Protection Platforms (CWPP) (28th)
 

Mindshare comparison

Cloud-Native Application Protection Platforms (CNAPP) Mindshare Distribution
ProductMindshare (%)
Prisma Cloud by Palo Alto Networks11.0%
Wiz13.8%
Microsoft Defender for Cloud8.1%
Other67.1%
Cloud-Native Application Protection Platforms (CNAPP)
Cloud Workload Protection Platforms (CWPP) Mindshare Distribution
ProductMindshare (%)
Trellix Cloud Workload Security0.6%
Microsoft Defender for Cloud14.0%
AWS GuardDuty11.3%
Other74.1%
Cloud Workload Protection Platforms (CWPP)
 

Featured Reviews

Sreeraj Mohandas - PeerSpot reviewer
Security Engineer at HashXpert
Consolidated cloud security has reduced manual work and has automated vulnerability remediation
I elaborate on my rating of SentinelOne support by mentioning that there was some time where the troubleshooting took a longer time. In fact, there were many meetings going on. The availability of the document on the internet is on a lesser side because as an engineer, I would want to know about the troubleshooting aspects of this particular tool. When I am facing a customer, I do not prefer to bring the vendor to every call and try to resolve it, as it takes months and months. It would be better to have a training session with the engineer on site to explain and train properly. This is not the case with SentinelOne, so this is the only thing I have a complaint about. I do not have any other room for improvement to suggest within SentinelOne itself. However, I would really want the AI assistant for the threat hunting part to be more accessible. They have it, but they are making it licensed, so it is a bit on the higher end.
reviewer2776578 - PeerSpot reviewer
Cyber Security Architect at a comms service provider with 10,001+ employees
Image scanning has supported consistent security practices during cloud deployment
On a scale of ten, we would say people are happy with Prisma Cloud by Palo Alto Networks for the part we use. People are okay with it. We probably would give an eight. We don't give ten because if we don't use the other parts of Prisma Cloud by Palo Alto Networks, it's because it was difficult to implement from an operational point of view. We could have deployed the runtime monitoring with Prisma Cloud by Palo Alto Networks, but within our organization at our company, it was very difficult to find who would be the owner for the alerts. People have other tools and in the end, we don't use the full capabilities of a product that we pay for. It's partially related to the difficulty to integrate Prisma Cloud by Palo Alto Networks runtime in our company's support process. We don't use the real-time monitoring part of Prisma Cloud by Palo Alto Networks. We don't know about the automated remediation feature of Prisma Cloud by Palo Alto Networks.
Manish Kumar Twinkle - PeerSpot reviewer
Security Engineer at itsipl
Granular protection has improved cloud workload visibility and reduced breach and ransomware risk
Trellix Cloud Workload Security is important in our organization because it reduces our risk of data breaches, protects from ransomware, and addresses the misconfiguration of cloud resources such as AWS and Azure. If any lateral movement has occurred in our infrastructure, it provides me with an alert, along with notifications of any container misconfiguration. We also receive continuous visibility of servers and compliance assurance for our vulnerability protection, ensuring that if something is not patched or vulnerable, the vulnerabilities are fixed. The best feature of Trellix Cloud Workload Security is the granular level implementation and configuration of ransomware protection, which includes a threat prevention module and vulnerability protection, allowing us to protect our servers with the help of container security. When discussing the granular level implementation in Trellix Cloud Workload Security, it means that when we configure the policies for threat prevention, we can define many aspects such as the type of file, kernel level, boot level, execution read-write time, memory-specific, and application-specific parameters. We can configure it properly based on our knowledge and also define the schedule for anti-malware scanning and updates. Trellix Cloud Workload Security has positively impacted our organization by improving our visibility across cloud and infrastructure, showing how many workloads we have and what is occurring with those workloads. It enhances protection against threat monitoring through real-time alerts and addresses misconfiguration and vulnerabilities on workloads and running applications. Additionally, it ensures compliance with organizational and industry securities, facilitating faster incident detection and response, which helps our IT and security team proactively remediate risks before major incidents occur. When discussing faster incident detection and response with Trellix Cloud Workload Security, if any alert comes through, such as a vulnerability detected on a server, expanding the alert provides us with MITRE framework tactics and techniques, including necessary remediations for updates or modifications.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cloud Native Security's most valuable features include cloud misconfiguration detection and remediation, compliance monitoring, a robust authentication security engine, and cloud threat detection and response capabilities."
"SentinelOne Singularity Cloud Security offers three key features: vulnerability management notifications, cloud configuration assistance, and security scanning."
"It is scalable, stable, and can detect any threat on a machine. It uses artificial intelligence and can lock down any virus."
"The user interface is well-designed and easy to navigate."
"The most valuable feature is the notification system, providing real-time alerts and comparisons crucial for maintaining security."
"It's helped free up staff time so that they can work on other projects."
"Singularity Cloud's ability to create custom correlation searches and reduce noise is highly valuable."
"The multi-cloud support is valuable. They are expanding to different clouds. It is not restricted to only AWS. It allows us to have different clouds on one platform."
"Integration is very easy. And because it supports security that spans multi- and hybrid-cloud environments, it's very easy to use."
"The client wasn't using all of the features, but the one that stood out was infrastructure-as-code (IaC). I built IaC use cases and was trying to get them to use it. I also liked cloud workload protection. I worked with the vulnerability management team to develop a process. It's a manual process, so it can be challenging to remediate many image or container issues. It was nice that we could build out a reporting process and download the reports. The reports are solid."
"I would rate Prisma Cloud by Palo Alto Networks ten out of ten."
"With the query language, we can analyze logs and find out which IPs are malicious. It also provides a graphical representation. It provides the overall visibility and how the traffic is flowing. We can see where the malicious IP is and whether it is an insider threat or an outsider threat."
"Syslog CLIs are the best feature."
"The solution will streamline and minimize manual efforts."
"Prisma Cloud has good integrations, provides the visibility and control we need, is far more reasonable for the customers cost-wise, and is a very good preventative tool for helping us identify misconfigurations, reduce false positives, and focus on the real risks in our cloud environment."
"It supports the multi-cloud environment beautifully."
"From my personal experience as a reseller, what really stands out in Trellix Cloud Workload Security is that it provides focused security with enhanced protection for servers in a cloud environment."
"Trellix Cloud Workload Security has positively impacted our organization by improving our visibility across cloud and infrastructure, showing how many workloads we have and what is occurring with those workloads."
"The discovery feature is the most valuable. After you integrate your cloud environment, maybe an Azure or AWS, or a private environment hosted on VMware, it automatically starts discovering the number of servers that are running on that cloud and the number of services that you have done. It is a beautiful feature because, from a security standpoint, it is difficult to identify which VM is compliant or not when you keep on provisioning a number of VMs in the cloud. It also checks for compliance. It checks whether a system is compliant and whether antivirus is installed on a VM. If an antivirus is installed, it checks whether the antivirus is updated to the latest signature package or not. All these things are beautifully done by McAfee Cloud Workload Security. For communicating with the McAfee server, you need to install an agent on the VM. McAfee Cloud Workload Security gives you a direct opportunity to install an agent on a Windows machine. If you have a Windows cloud, you can directly push that agent onto the VM through your McAfee portal. It provides you a single dashboard view of all servers present in the cloud. It shows the servers on which the antivirus is already installed as well as the servers for which the antivirus installation is still pending. This dashboard view is a much-needed thing. It also has a centralized management, which makes it easy to use."
"All these things are beautifully done by McAfee Cloud Workload Security."
"The most valuable feature is the application control."
 

Cons

"For SentinelOne, improvements could be made in managing Internet dependency as cloud-based operations can pose challenges in environments with limited connectivity."
"In version 2, a lot of rules have been deployed for Kubernetes security and CDR, which makes a lot of issues of critical severity, whereas they are not critical or of high severity. There is a mismatch of severities. They need to work on severity management."
"We had a glitch in SentinelOne Singularity Cloud Security where it fed us false positives in the past."
"It would be really helpful if the solution improves its agent deployment process."
"One area for improvement is that the dashboards are not customizable."
"The documentation could be better."
"With Cloud Native Security, we can't selectively enable or disable alerts based on our specific use case."
"A beneficial improvement for SentinelOne Singularity Cloud Security would be integration with Jira, allowing for a more streamlined ticketing system."
"The Fargate security microservice that's running doesn't support blocking features, which would be helpful. Another issue is the lifecycle. It isn't easy to upgrade if we have a console in Fargate."
"Based on my experience, the customization—especially the interface and some of the product identification components—is not as customizable as it could be. But it makes up for that with the fact that we can access the API and then build our own systems to read the data and then process and parse it and hand it to our teams."
"We are encountering issues with the new permissions required for AWS integration with Prisma."
"The deployment and onboarding are plug-and-play, but somewhat hard to handle in terms of integration with external operations tools. The product design isn't up to the current standard. I would recommend having higher standards in terms of integration with other tools, especially operationalized tools."
"The Application Security dashboard was not as user-friendly as the Cloud Security dashboard."
"The challenge that Palo Alto and Prisma have is that, at times, the instructions in an event are a little bit dated and they're not usable. That doesn't apply to all the instructions, but there are times where, for example, the Microsoft or the Amazon side has made some changes and Palo Alto or Prisma was not aware of them. So as we try to remediate an alert in such a case, the instructions absolutely do not work. Then we open up a ticket and they'll reply, "Oh yeah, the API for so-and-so vendor changed and we'll have to work with them on that." That area could be done a little better."
"This solution is more AWS and Azure-centric. It needs to be more specific on the GCP side, which they are working on."
"They should improve the user experience."
"I still believe the support could improve because we face multiple challenges with Trellix support for solving issues, which take too long."
"There is room for improvement in the pricing model."
"We experience limited customer support, typically requiring a minimum wait of three to four hours for ticket responses."
"Its vulnerability assessment is not the best. We cannot identify the vulnerabilities that are related to the operating system by using McAfee Cloud Workload Security. I wish McAfee would add a vulnerability assessment tool that will not only identify the vulnerability but will also be able to generate a report so that the required patching can be done for the servers. Currently, McAfee Cloud Workload Security only integrates with AWS and Azure. If it can also integrate with GCP, Alibaba, and other cloud services available in the market, it would be good because not all people are using Azure and AWS."
"Its vulnerability assessment is not the best. We cannot identify the vulnerabilities that are related to the operating system by using McAfee Cloud Workload Security."
 

Pricing and Cost Advice

"The tool is cost-effective."
"PingSafe falls within the typical price range for cloud security platforms."
"SentinelOne is quite costly compared to other security platforms."
"SentinelOne Singularity Cloud Security is on the costlier side."
"The price depends on the extension of the solution that you want to buy. If you want to buy just EDR, the price is less. XDR is a little bit more expensive. There are going to be different add-ons for Singularity."
"It is a little expensive. I would rate it a four out of ten for pricing."
"I wasn't sure what to expect from the pricing, but I was pleasantly surprised to find that it was a little less than I thought."
"Its pricing was a little less than other providers."
"This solution is good for a company with at least 400 people that must be connected remotely. For smaller companies, it can be too expensive."
"The pricing for Prisma Cloud is high. Providing a pay-as-you-go model or pricing options tailored for medium and small enterprises could help attract more clients."
"The pricing of the solution is fair."
"Its licensing cost depends on the type of license such as the business license or the enterprise license. The enterprise license is costlier than the business license, but we get more visibility and more modules. If you have a multi-cloud environment and subscribe to each cloud's native CSPM tool, it is costly. If you are using a single tool like Prisma Cloud, with a single license, you can monitor all environments, such as Google Cloud, Azure, AWS, and Oracle Cloud. The cost of Prisma Cloud is less than the cost of subscribing to the CSPM tool of each cloud provider. This is where Prisma Cloud can save costs."
"The pricing is competitive; for the most part, the security firms have similar prices."
"The cost was not on the higher side. Overall, the cost gets recovered with its implementation."
"Its price is reasonable as compared to other products. The main challenge is explaining the licensing model to customers. It isn't a problem related to Palo Alto. Commonly, people don't understand cloud licensing or security licensing. When they have fixed virtual machines, they know what they are going to be charged, but when it comes to cloud automation, it is hard for them to get clarity in case of high workloads or when they have enabled auto-scaling, etc. It would be helpful if Palo Alto can educate people on their licensing programs."
"You can expect a premium price because it is a premium quality product by a leading supplier."
"It is not an expensive product. I am in the Indian market, and it is one of the most reliable and cost-effective solutions."
report
Use our free recommendation engine to learn which Cloud-Native Application Protection Platforms (CNAPP) solutions are best for your needs.
895,272 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
11%
Manufacturing Company
9%
Government
5%
Financial Services Firm
15%
Computer Software Company
9%
Manufacturing Company
9%
Government
6%
Comms Service Provider
16%
Government
13%
Construction Company
10%
Outsourcing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business53
Midsize Enterprise25
Large Enterprise59
By reviewers
Company SizeCount
Small Business38
Midsize Enterprise20
Large Enterprise57
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for PingSafe?
My experience with the pricing, setup costs, and licensing of SentinelOne Singularity Cloud Security is that the pric...
What needs improvement with PingSafe?
Integration could be improved because not all solutions can be integrated with SentinelOne Singularity Cloud Security...
What is your primary use case for PingSafe?
I use SentinelOne Singularity Cloud Security to collect endpoint data from the company, such as servers, computers, a...
What is your primary use case for Prisma Cloud by Palo Alto Networks?
Prisma Cloud helps support DevSecOps methodologies, making those responsibilities easier to manage.
What Cloud-Native Application Protection Platform do you recommend?
We like Prisma Cloud by Palo Alto Networks, since it offers us incredible visibility into our entire cloud system. We...
What do you think of Aqua Security vs Prisma Cloud?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valu...
Ask a question
Earn 20 points
 

Also Known As

PingSafe
Prisma Public Cloud, RedLock Cloud 360, RedLock, Twistlock, Aporeto
McAfee Cloud Workload Security
 

Overview

 

Sample Customers

Information Not Available
Amgen, Genpact, Western Asset, Zipongo, Proofpoint, NerdWallet, Axfood, 21st Century Fox, Veeva Systems, Reinsurance Group of America
Information Not Available
Find out what your peers are saying about Prisma Cloud by Palo Alto Networks vs. Trellix Cloud Workload Security and other solutions. Updated: March 2025.
895,272 professionals have used our research since 2012.